Aggregator
CVE-2026-2635 | mlflow default password
CVE-2026-2490 | RustDesk Client on Windows link following
CVE-2026-2040 | PDF-XChange Editor TrackerUpdate uncontrolled search path
Simbian AI Pentest Agent delivers continuous, context-aware penetration testing
Simbian announced the launch of the Simbian AI Pentest Agent, a new solution designed to provide enterprises with ongoing, on-demand penetration testing. Simbian’s AI Pentest Agent is the first automated penetration testing solution to incorporate business context, ensuring that findings are focused on each customer’s specific security risks and priorities. Developed in partnership the leading global risk management partner LRQA, the AI agent allows security teams to move beyond manual, point-in-time assessments to validate their … More →
The post Simbian AI Pentest Agent delivers continuous, context-aware penetration testing appeared first on Help Net Security.
CVE-2026-2044 | GIMP PGM File Parser uninitialized pointer
CVE-2026-2045 | GIMP XWD File Parser out-of-bounds write
Poland restricts Chinese-made cars at protected military sites
Poland’s military leadership has decided that cars manufactured in the People’s Republic of China will no longer cross the gates of sensitive military bases. The decision follows a risk analysis focused on the growing integration of digital systems in cars and the potential for uncontrolled acquisition and use of data by those systems. The new rules also prohibit connecting official phones to infotainment systems in China-made cars. They also apply to other motor vehicles equipped … More →
The post Poland restricts Chinese-made cars at protected military sites appeared first on Help Net Security.
Attackers breach France’s national bank account database
China-Linked Hackers Use Dell RecoverPoint Flaw to Drop GrimBolt Malware
Google Chrome security advisory (AV26-145)
【资料】美国新版《对外援助法》
С такими друзьями и врагов не надо. Как хакеры прикидываются оппозицией, чтобы взломать ваш Telegram
Medusa Blog
You must login to view this content
PromptSpy – First Known Android AI Malware Uses Google’s Gemini for Decision-making
The first known Android malware family to weaponize a generative AI model, specifically Google’s Gemini, as part of its active execution flow. Discovered in February 2026, the malware represents a significant evolutionary step in mobile threats and follows ESET’s earlier identification of PromptLock, the first AI-powered ransomware, in August 2025. PromptSpy, uncovered by ESET researcher […]
The post PromptSpy – First Known Android AI Malware Uses Google’s Gemini for Decision-making appeared first on Cyber Security News.
Medusa Blog
You must login to view this content
Medusa Blog
You must login to view this content
Data on 1.2 million French bank accounts accessed in registry breach
In late January 2026, a malicious intruder accessed France’s national bank account registry, FICOBA, enabling them to view information tied to 1.2 million accounts, the Ministry of the Economy and Finance disclosed on Wednesday. TV5 Monde reported that the perpetrator (or perpetrators) obtained login credentials belonging to a civil cervant authorized to use the database and then used those credentials to explore its contents. They managed to access bank account information and related personal data: … More →
The post Data on 1.2 million French bank accounts accessed in registry breach appeared first on Help Net Security.
ThreatsDay Bulletin: OpenSSL RCE, Foxit 0-Days, Copilot Leak, AI Password Flaws & 20+ Stories
Threat Actors Using Fake Google Forms Site to Harvest Google Logins
A new phishing campaign is targeting job seekers through fake Google Forms websites designed to steal login credentials. The campaign uses sophisticated domain impersonation techniques to trick victims into revealing their Google account information. Attackers have registered a fraudulent domain that closely mimics the legitimate Google Forms service. The phishing operation revolves around suspicious URLs […]
The post Threat Actors Using Fake Google Forms Site to Harvest Google Logins appeared first on Cyber Security News.